Medium SecretsManager Regional

Secrets Manager secrets should have automatic rotation enabled

NISTISO 27001HIPAA

Description

This control checks whether a secret stored in AWS Secrets Manager is configured with automatic rotation.


Remediation

To turn on automatic rotation for Secrets Manager secrets, configure an AWS Lambda function for rotation.

Steps

  1. Go to the AWS Secrets Manager console.
  2. Select the secret you want to rotate.
  3. Under 'Rotation configuration', enable automatic rotation and set up the rotation schedule.
  4. Choose and configure an AWS Lambda function for rotation.

Compliance

NISTISO 27001HIPAA